How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones

A $50,000 Exploit Chain Turns Bixby Against Samsung Phones, Exposing Users to Remote System-Level Compromise Two security researchers have demonstrated a sophisticated exploit chain that can hack into Samsung mobile devices by manipulating the virtual assistant Bixby. Dimitrios Valsamaras and Ken Gannon, who presented their findings at the Black Hat conference, showed how an attacker … Read more

Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability

A recently patched vulnerability in JetBrains TeamCity, a widely used continuous integration and continuous delivery platform, is being actively exploited by hackers. According to the US Cybersecurity and Infrastructure Security Agency (CISA), threat actors have started targeting organizations using TeamCity On-Premises versions, putting sensitive data and systems at risk. TeamCity is a central component of … Read more

Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities

Critical Flaws in Cisco’s SD-WAN and IOS XE Expose Businesses to Remote Attacks Cisco has just released patches for two dozen vulnerabilities across its products, including critical-severity bugs in Catalyst SD-WAN, IOS XE, and Secure Firewall Management Center (FMC). The affected companies should take immediate action to protect their networks from potential attacks. These flaws … Read more

Flaws in Google APK for Python Unlock Agent-to-Agent Attack

New Attack Vector Emerges as Researchers Uncover Flaws in Google’s Agent Development Kit for Python A novel attack vector has been discovered by researchers at Pillar Security, who found a series of flaws in Google’s open-source Agent Development Kit (ADK) for Python. The vulnerabilities, which have since been patched by Google, allowed malicious agents to … Read more

Snowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People

Snowflake Database Breach Exposes Sensitive Data of Over 100 Million Individuals A hacker, identified as a prominent figure in the cybersecurity community, has pleaded guilty to multiple counts of identity theft and data breaches affecting at least 100 million people worldwide. The individual, who was arrested earlier this year, gained unauthorized access to sensitive databases … Read more

How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones

A $50,000 Exploit Chain Exposes Samsung Phones to Remote System-Level Compromise Two security researchers have discovered a sophisticated exploit chain that can turn Samsung’s virtual assistant Bixby against its own users. The attack, which was demonstrated at the Pwn2Own Ireland hacking competition in October 2025 and detailed this week at the Black Hat conference, can … Read more

Flaws in Google APK for Python Unlock Agent-to-Agent Attack

Google’s Agent Development Kit (ADK) for Python has been found vulnerable to a novel attack vector, where one AI agent can be used to compromise another. This “agent-to-agent” exploitation allows malicious text to be injected into trusted automation workflows, potentially disrupting the software supply chain. Researchers from Pillar Security discovered the flaws in Google’s open-source … Read more

15 TP-Link Bugs Expose Risks in Zero-Trust Provisioning

15 Vulnerabilities in TP-Link Devices Expose Risks of Zero-Trust Provisioning A group of researchers has uncovered 15 vulnerabilities in TP-Link’s networking technologies, highlighting the risks associated with automated network device provisioning. The flaws, discovered by Forescout’s Vedere Labs security researchers Stanislav Dashevskyi and Francesco La Spina, affect TP-Link’s Omada software-defined networking (SDN) ecosystem for routers, … Read more

CSS: The Hidden Threat Lurking in Your Inbox

Hidden Threat Lurks in Your Inbox: CSS-Based Attacks on the Rise Cybersecurity researchers have sounded the alarm about a new threat lurking in plain sight: Cascading Style Sheets (CSS) attacks that can exfiltrate data from webmail platforms. These attacks are made possible by the powerful capabilities of CSS, which is often overlooked and underestimated. But … Read more

No Perfect Fix for AI Browser Prompt Injection Flaws

**Vulnerabilities in AI Browsers Leave Users Exposed to Prompt Injection Attacks** A recent presentation at Black Hat USA 2026 has shed light on a concerning reality facing users of AI-powered web browsers. Despite multiple security guardrails, these browsers remain vulnerable to prompt injection attacks, which can lead to data exfiltration and account takeover. The issue … Read more